|
24 | 24 | [{rabbitmq_web_mqtt,
|
25 | 25 | [{ssl_config, [{ip,"127.0.0.4"},{port,15672}]}]}],
|
26 | 26 | [rabbitmq_web_mqtt]},
|
| 27 | + |
27 | 28 | {ssl,
|
28 |
| - "web_mqtt.ssl.ip = 127.0.0.2 |
29 |
| - web_mqtt.ssl.port = 15671 |
| 29 | + "web_mqtt.ssl.port = 15671 |
30 | 30 | web_mqtt.ssl.backlog = 1024
|
31 | 31 | web_mqtt.ssl.certfile = test/config_schema_SUITE_data/certs/cert.pem
|
32 | 32 | web_mqtt.ssl.keyfile = test/config_schema_SUITE_data/certs/key.pem
|
33 | 33 | web_mqtt.ssl.cacertfile = test/config_schema_SUITE_data/certs/cacert.pem
|
34 |
| - web_mqtt.ssl.password = changeme", |
| 34 | + web_mqtt.ssl.password = changeme |
| 35 | + |
| 36 | + web_mqtt.ssl.versions.tls1_2 = tlsv1.2 |
| 37 | + web_mqtt.ssl.versions.tls1_1 = tlsv1.1", |
35 | 38 | [{rabbitmq_web_mqtt,
|
36 | 39 | [{ssl_config,
|
37 |
| - [{ip,"127.0.0.2"}, |
38 |
| - {port,15671}, |
| 40 | + [{port,15671}, |
39 | 41 | {backlog,1024},
|
40 | 42 | {certfile,"test/config_schema_SUITE_data/certs/cert.pem"},
|
41 | 43 | {keyfile,"test/config_schema_SUITE_data/certs/key.pem"},
|
42 | 44 | {cacertfile,"test/config_schema_SUITE_data/certs/cacert.pem"},
|
43 |
| - {password,"changeme"}]}]}], |
| 45 | + {password,"changeme"}, |
| 46 | + |
| 47 | + {versions,['tlsv1.2','tlsv1.1']} |
| 48 | + ]}]}], |
| 49 | + [rabbitmq_web_mqtt]}, |
| 50 | + |
| 51 | + {ssl_ciphers, |
| 52 | + "web_mqtt.ssl.port = 15671 |
| 53 | + web_mqtt.ssl.backlog = 1024 |
| 54 | + web_mqtt.ssl.certfile = test/config_schema_SUITE_data/certs/cert.pem |
| 55 | + web_mqtt.ssl.keyfile = test/config_schema_SUITE_data/certs/key.pem |
| 56 | + web_mqtt.ssl.cacertfile = test/config_schema_SUITE_data/certs/cacert.pem |
| 57 | + web_mqtt.ssl.password = changeme |
| 58 | + |
| 59 | + web_mqtt.ssl.honor_cipher_order = true |
| 60 | + web_mqtt.ssl.honor_ecc_order = true |
| 61 | + web_mqtt.ssl.client_renegotiation = false |
| 62 | + web_mqtt.ssl.secure_renegotiate = true |
| 63 | + |
| 64 | + web_mqtt.ssl.versions.1 = tlsv1.2 |
| 65 | + web_mqtt.ssl.versions.2 = tlsv1.1 |
| 66 | + web_mqtt.ssl.ciphers.1 = ECDHE-ECDSA-AES256-GCM-SHA384 |
| 67 | + web_mqtt.ssl.ciphers.2 = ECDHE-RSA-AES256-GCM-SHA384 |
| 68 | + web_mqtt.ssl.ciphers.3 = ECDHE-ECDSA-AES256-SHA384 |
| 69 | + web_mqtt.ssl.ciphers.4 = ECDHE-RSA-AES256-SHA384 |
| 70 | + web_mqtt.ssl.ciphers.5 = ECDH-ECDSA-AES256-GCM-SHA384 |
| 71 | + web_mqtt.ssl.ciphers.6 = ECDH-RSA-AES256-GCM-SHA384 |
| 72 | + web_mqtt.ssl.ciphers.7 = ECDH-ECDSA-AES256-SHA384 |
| 73 | + web_mqtt.ssl.ciphers.8 = ECDH-RSA-AES256-SHA384 |
| 74 | + web_mqtt.ssl.ciphers.9 = DHE-RSA-AES256-GCM-SHA384", |
| 75 | + [{rabbitmq_web_mqtt, |
| 76 | + [{ssl_config, |
| 77 | + [{port,15671}, |
| 78 | + {backlog,1024}, |
| 79 | + {certfile,"test/config_schema_SUITE_data/certs/cert.pem"}, |
| 80 | + {keyfile,"test/config_schema_SUITE_data/certs/key.pem"}, |
| 81 | + {cacertfile,"test/config_schema_SUITE_data/certs/cacert.pem"}, |
| 82 | + {password,"changeme"}, |
| 83 | + |
| 84 | + {honor_cipher_order, true}, |
| 85 | + {honor_ecc_order, true}, |
| 86 | + {client_renegotiation, false}, |
| 87 | + {secure_renegotiate, true}, |
| 88 | + |
| 89 | + {versions,['tlsv1.2','tlsv1.1']}, |
| 90 | + {ciphers, [ |
| 91 | + "DHE-RSA-AES256-GCM-SHA384", |
| 92 | + "ECDH-ECDSA-AES256-GCM-SHA384", |
| 93 | + "ECDH-ECDSA-AES256-SHA384", |
| 94 | + "ECDH-RSA-AES256-GCM-SHA384", |
| 95 | + "ECDH-RSA-AES256-SHA384", |
| 96 | + "ECDHE-ECDSA-AES256-GCM-SHA384", |
| 97 | + "ECDHE-ECDSA-AES256-SHA384", |
| 98 | + "ECDHE-RSA-AES256-GCM-SHA384", |
| 99 | + "ECDHE-RSA-AES256-SHA384" |
| 100 | + ]} |
| 101 | + ]}]}], |
44 | 102 | [rabbitmq_web_mqtt]},
|
45 | 103 |
|
46 | 104 | {websocket_endpoint,
|
|
0 commit comments